This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

LAN to LAN block

I am trying to setup a rule to block LAN to LAN traffic

Port 1(LAN): 172.16.16.16

Port 2: WAN DHCP

Port 3(LAN): 10.10.10.1

I am able to pink from 172.16.16.17 to 10.10.10.1

I have setup firewall rule LAN to LAN network 172.16.16.0 (source) 10.10.10.0 (destination) block however still able to ping

Have tried changing Port 3 to new Zone LAN3 but still able to ping. Any ideas? 



This thread was automatically locked due to age.
Parents Reply
  • 10.10.10.1 is XG's interface.

    XG's interface belong Local zone, not LAN zone.

    If you allow ping of LAN zone in device access, you will able to ping the XG's interface IP 10.10.10.1 from LAN.

    But not allow to ping other IP in 10.10.10.0/24, since you block the LAN to LAN (10.10.10.0/24) in firewall rule.

Children